Information Function Audit M.C. Juan Carlos Olivares Rojas Department of Computer and System Instituto Tecnológico de Morelia

Slides:



Advertisements
Presentaciones similares
ALC # 16 Hoy es viernes el 4 de octubre Copy the words below in two minutes. 1.Artístico 2.Atlético 3.Inteligente 4.Tímido 5.Sociable 6.Generoso 7.Organizado.
Advertisements

M.C. Juan Carlos Olivares Rojas
Writing A Lab Report.
Fomento del desarrollo sustentable a partir de las carreras del SNIT M. Sc. Juan Carlos Olivares Rojas Department of Computer and System Instituto Tecnológico.
Ms. Martinez September 3, 2014 Spanish 1 Instructions:  You need to write the notes in your Spanish journals.  Write the translation next to the Spanish.
Welcome back to School Ms. Martinez
Planning and Basic Dseign of a LAN M.C. Juan Carlos Olivares Rojas Department of Computer and System Instituto Tecnológico de Morelia
FESTEJEMOS Eventos Importantes en la Vida Repaso y Prueba.
Starter: stars and wishes. Learning objectives: To use a writing frame to construct new language and memory strategies to remember it Outcome: Approximately.
Telling Time.
¡Hola! ¡Buenos días! ¡Bienvenidos! Please find your class number on the class paper that is taped to the board and then look for your seat.
Hoy es lunes, el treinta de septiembre. La pregunta: How do you greet someone… in the morning? in the afternoon? in the evening? La tarea: OJO  OJO 
Time Expression with Hacer Grammar Essential #106.
Notes #18 Numbers 31 and higher Standard 1.2
Some “boolean” concepts The following series of slides is not supposed to give you answers, but to provide substance for thought and ponder. The placenta.
Informatic Topics M. Sc. Juan Carlos Olivares Rojas February, 2009.
This activity will help you to master the key verbs of this chapter (4B). There is no way you can understand this chapter if you don’t know all these verbs.
Español 1 7 de octubre de La Campana Hoy es lunes el 7 de octubre de Escribe en español: 1. It is 2: I have brown eyes. 3. He likes.
Study this picture for 1 minute. Try to remember as much as possible about it. Now tell your partner about the picture. Take it in turns to say something.
Hoy es lunes, el 9 de febrero. ESPONJA: ¿Qué significa? 1. Hay que estudiar para las pruebas. 2. Yo siempre preparo mi tarea, pero mis amigos solo preparan.
El uso del artículo como sustantivo
First Grade – High Frequency Word Reading Competition Classroom Competition Created by: Malene Golding School Improvement Officer: Kimberly Fonteno.
Unit 2A: Lesson 2 How to Talk About Your Schedule Gramática- Present tense of –ar verbs.
Definition
Digital Photography: Selfie Slides
Digital Photography: Selfie Slides By: Essence L. Thomas.
¿Qué haces en la escuela? Question words, objects, yo-go’s.
Sub plans October 24th. Preguntas esenciales: ¿Por qué los países centro americanos han tenido tanta inestabilidad? ¿Qué cosas tienen en común los países.
Digital Photography: Selfie Slides Your Name Date Class Period.
Digital Photography: Selfie Slides Ana Hernandez 10/23/14 5th.
Digital Photography: Selfie Slides Anaiyah holiday 10/23/2014 6th.
Spanish Sentence Structure How can we make better sentences?
Notebook Organization (Todo el trabajo de esta clase se hace en el cuaderno)
Gramática 1.2 Verb Conjugations, the verb SER, Punctuation and Accent Marks el 22/23 de septiembre.
Essential ?: How do I conjugate this irregular verb and how is it used?
© Crown copyright 2011, Department for Education These materials have been designed to be reproduced for internal circulation, research and teaching or.
¡Hola, buenas tardes! Please write your desk number on your disclosure paper to the left of the large C. Place the paper on the correct color, on the table,
Objetivo: to identify phrases that express someone must do something. Ahora: List 3 adverbs and where are they placed in a sentence.
JUEVES, EL 10 DE SEPTIEMBRE LT: I WILL RECOGNIZE SOME NEW VOCABULARY WORDS. Go over tests & retake procedures Interpretive Assessment: numbers & alphabet.
-go Verbs There is a small but very important group of verbs that we call the “-go” verbs. These verbs are: Conocer : to know (people) Hacer: to make/do.
Preparacion Hoy es viernes el 4 de diciembre. Today is Friday, December 4. DO NOW: In preparation for some exercises in class do the following with the.
ECOM-6030 PASOS PARA LA INSTALACIÓN DE EASYPHP Prof. Nelliud D. Torres © - Derechos Reservados.
Hoy es martes. La fecha es el 22 de octubre
To be, or not to be? Let’s start out with one of the most important verbs in Spanish: ser, which means “to be.”
If you won the lottery, what would you do?
Un juego de adivinanzas: ¿Dónde está el tesoro? A1B1C1D1E1F1 A4B4C4D4E4F4 A2B2C2D2E2F2 A5B5C5D5E5F5 A3B3C3D3E3F3 A6B6C6D6E6F6 Inténtalo de nuevo Inténtalo.
Unidad I, Lección 4 La América Central y México. 23/9 Bellringer Take down the vocabulary notes which are located on the next 3 slides. The first two.
¡Bienvenidos a clase! lunes, el 6 de abril. ¿Que vamos a hacer hoy? 1.tener + que + infinitive 2.hace + time expressions 3.adverbios.
English Language II (2). English Language I (2) Warm-up.
Agenda: 26/04/2016 *Boot verbs and jugar *La Familia *Tener: Quack Video *Descripciones Students will be learning new vocabulary with the family and tener.
Week 28 Spanish III Honors. Para Empezar 28 de marzo ¿Qué hiciste durante tus vacaciones de primavera?
Verbs like Gustar Notes/ Examples.
Saber Vs. Conocer Sra. Altamirano Español II. First, we need to learn the conjugation of the verb SABER Yo sé Tú Sabes él, ella,ud. Sabe Nosotros Sabemos.
UNIVERSIDAD AUTÓNOMA DEL ESTADO DE HIDALGO ESCUELA SUPERIOR DE ZIMAPÁN Licenciatura en Derecho Logros y experiencias. Lengua extranjera. L.E.L.I. Paulina.
Escribir *You can get creative. You can write in the first person which means you are the character, you can use the third person which means you are talking.
UNIVERSIDAD AUTÓNOMA DEL ESTADO DE HIDALGO ESCUELA SUPERIOR DE ZIMAPÁN
*TIENES 5 MINUTOS* Objective: Vocab/Ideas: Vámonos:
To be, or not to be? Let’s start out with one of the most important verbs in Spanish: ser, which means “to be.”
To be, or not to be? Let’s start out with one of the most important verbs in Spanish: ser, which means “to be.”
First Grade Dual High Frequency Words
Proyecto: Mi horario Nombre Hora Fecha.
UNIVERSIDAD TECNICA DE MACHALA UNIDAD ACADEMICA DE CIENCIAS EMPRESARIALES CARRERA DE ECONOMIA ESTUDENTS: FIRST CONDITIONAL SENTENCES TEACHER: - Calvache.
Indirect Questions First Day on the Job 11 Focus on Grammar 4 Part X, Unit 28 By Ruth Luman, Gabriele Steiner, and BJ Wells Copyright © Pearson Education,
Gustar, Interesar, Aburrir
Development of the concert programme
Welcome to PowerPoint gdskcgdskfcbskjc. Designer helps you get your point across PowerPoint Designer suggests professional designs for your presentation,
How to write my report. Checklist – what I need to include Cover page Contents page – with sections Introduction - aims of project - background information.
How much? - How many? English Grammar. When we want to know the quantity or amount of something, we ask questions starting with How much and How many.
Transcripción de la presentación:

Information Function Audit M.C. Juan Carlos Olivares Rojas Department of Computer and System Instituto Tecnológico de Morelia lat, long

Disclaimer Some material in this presentation has been obtained from various sources, each of which has intellectual property, so in this presentation will only have some rights reserved. These slides are free, so you can add, modify, and delete slides (including this one) and slide content to suit your needs. They obviously represent a lot of work on my part. In return for use, I only ask the following: if you use these slides (e.g., in a class) in substantially unaltered form, that you mention their source.

Outline Compilation of Organizational Information Human Resources Assesment Interviews with Informatic Personal Budget and financial Situation. Budgets Financial and material Resources.

Objectives of the Session The students will know the basis of Informatic Function Audit

Compilation of Organizational Information It’s important for the correct management of Auditing Process. Before of making a Report is necessary the information that sustain the ideas. This information is knowed such as Evidence. Remeber the first step is know the organizational context of a Firm.

Compilation of Organizational Information It’s important to manage an eficient way to recollect information such as logs, databases, control sheet and cross-documents. The retrieval information must be the most quickly as posible. In the research process this activity is highly- consumer of time (Theoretical Frame and State-of-Art)

Human Resources Assesment This action is very important because some firms have and excelente organization and planning but in practice have a bad execution and directions (CONTROL) There are two kinds of human resources evalution: Activity and Resposability of a Employee in an organization (For Example a Bad Director or Boss).

Human Resources Assesment Assesment of Organization about their People (asking about a good working conditions). One technique of Human Resources Assesment is the elaboration and application of questionaries. Questionaries are a good option when there are not enough time, but are dificult because it needs a correct design and processing.

Interviews with Informatic Personal Interview is a vital process inside auditing. We must recollect and store this information such as Evidence but in most of the time is dificult because it’s not a legal process and some Employee can’t or doesn’t like talking about some topic in these circunstances. Interviews are dificult in design and application but are crucial.

Interviews with Informatic Personal Interviews provide the correct specification about a process. Auditors could be aimed by Personal in some process which are dficult to understand. There are a lot of kinds of Interviews. The most important thing in Interview Process is the script. The interviewer should be and excelent improviser and carismatic person.

Activity Example of Human Resource Assement* Make a control sheet (check list) indicating the elements which are present. Compare the control list with the control sheet and define what elements are present such as Evidence are not registred in the Documentation. Pairs, thirds or quatrains (Delivery a Report)

Homework Make a Interview with some Person in Digital way such as: audio (podcasting) and video over Internet (videocasting). The interview must contain a script (duplex way) It contains a Syndication RSS You can interview a classmate (pair) about their future job.

Budget and Financial Situation Budget is an important element because Auditors have some constraints, and the most important is Financial. Ideally, the audit budget should be created after the audit schedule is determined.

API BruteForce Develop a Java program which can access in a System with Login Screen (Username and Password). The user must indicate the initial point or area of the first field. Must indicate the max length of words (update it for variable length*) Probe it with a Real Program or Simulate Program. If the screen changed the program has entered (consider a delay for authentication).

API Brute Force Optional make a statistic module for calculating iterations and time of obtaininig pasword. Optional Include a Search Dicctionary (depends of Language).

Jawa.awt.Robot M.C. Juan Carlos Olivares Rojas

Introducción La clase java.awt.Robot permite definir un objeto que puede realizar acciones de manera automatizada sobre la interfaz gráfica del sistema. Cuenta en general con métodos para mover el ratón, presionar botones del ratón, presionar teclas, capturar imágenes, entre otras funcionalidades.

Ejemplo import java.awt.AWTException; import java.awt.Robot; import java.awt.event.InputEvent; import java.awt.event.KeyEvent; public class Aplicacion { public static void main (String args []) { new Aplicacion(); }

Ejemplo Aplicacion() { try { Robot robot = new Robot(); // Simula un click con el ratón robot.mousePress(InputEvent.BUTTON1_MASK) ; robot.mouseRelease(InputEvent.BUTTON1_M ASK); // Simula presionar una tecla

Ejemplo robot.keyPress(KeyEvent.VK_O); robot.keyRelease(KeyEvent.VK_O); } catch (AWTException e) { e.printStackTrace(); }

API La clase cuenta con dos constructores: Robot() sin argumentos crea un objeto que opera en toda la pantalla. Robot(GraphicsDevice screen) Construye un objeto Robot en las coordenadas indicadas. A continuación se describe cada uno de los métodos de la clase.

API java.awt.image.BufferedImage createScreenCapture(Rectangle s) Crea una imagen de las coordenadas indicadas. void delay(int ms) El objeto se duerme un tiempo especificado de ms milisegundos. int getAutoDelay() Obtiene el tiempo en que el Robot se está durmiendo.

API Color getPixelColor(int x, int y) Reegresa el color del punto señalado. boolean isAutowaitForIdle() Checa si el Robot ejecuta waitForIdle() después de un evento. void keyPress(int keycode) Presiona una tecla.

API void keyRelease(int keycode) Libera una tecla. void mouseMove(int x, int y) Mueve el puntero del ratón a las coordenadas indicadas. void mousePress(int buttons) Presiona uno o más botones del ratón.

API void mouseRelease(int buttons) Ocurre cuando se libera un botón del ratón. void mouseWheel(int wheelAmt) Ocurre cuando gira la rueda del ratón. void setAutoDelay(int ms) Configura el tiempo de retardo que existe entre cada evento del Robot.

API void setAutowaitForIdle(boolean isOn) Configura el tiempo en que el Robot ejecuta un waitForIdle(). java.lang.String toString() Convierte el Robot en una cadena de texto. void waitForIdle() Espera a que todos los eventos de la cola de eventos hayan sido despacahdos.

Brute Force Attack Moodle Case Exist many user created by machines (spam) Solutions? What happend with Eco Server Audit Case?

Budgets  The most important thing is budget coordination.  Budget is an important constraint tha auditor should considered in the assesment. For example a small ofice (PyME) doesn’t have enough money to buy a Hardware Firewall and the small company only implement a individual Firewall through Operating System.

Financial and material Resources. Those elements are important because we need it for working in auditing. Material Resources used by an Auditor could be: Papers Formats (collection), PDA, Mobile Phone, Laptop or Notebook (paper). Depending of the information assest the tools are variable for example a cable testing in Computer Network Audits.

ERP Case Reading the papers “RECREATION, INC. AN INFORMATION TECHNOLOGY RISK ASSESSMENT CASE STUDYOF ENTERPRISE RESOURCE PLANNING (ERP) SYSTEMS” and IT Audit Basics Auditing Security and Privacy in ERP Applications In 3-Person Teams redacts a Wiki (paper format). The wiki must contain 5 good ideas and 5 bad ideas. Homework: bring a cup of coffe, tomorrow

ERP Case Wiki Example Instituto Tecnologico de Morelia (P1) It’s a Institution of Technological Superior Education founded in 1964 by Adolfo Lopez Mateos. Its firts name was Inst. Tec. Regional de Morelia. It’s the 12th Institute of Technology Actually has 9 Profesional Carrers: 7 engineers and 2 3 Bachelors (1 in Distance Way).

Exam Finish the Planning and Organization of Audit Project in ITM. The exam is individual and must include: WBS/ Time Matrix / Gantt Chart Estimation time, resources, cost (budget) Organization Indicate in complete form how will assesment each information assest.

Exam Grading: Planning and Organization 50% Assesment Methodology 50% Deadline: Monday, March 30 Document Printed

Rubric Una rúbrica es un elemento que nos permite definir en forma tabular los requisitos que debe tener un producto en general y evaluarlos en base a un criterio determinado.

Ejemplo de Rúbrica

Actividad Definir una rúbrica para evaluar galletas de chispas de chocolate, definir al menos 5 características, ubicar porcentajes a cada una. Distribuir la rúbrica a sus demás compañeros para que puedan evaluar y sacar un promedio de las especificaciones. Competencias a Desarrollar: Trabajo en Equipo, Análisis y Síntesis, Evaluación cuantitativa y cualitativa, Redacción.

References Senft, S. And Gallegos, F. (2008) Information Technology Control and Audit, Third Edition, CRC Press, United States

¿Preguntas?